Описание
The Web Services Security component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.35 and 7.0 before 7.0.0.3 has an unspecified "security problem" in the XML digital-signature specification, which has unknown impact and attack vectors.
Ссылки
- Not Applicable
- PatchVendor Advisory
- Patch
- Patch
- Third Party AdvisoryVDB Entry
- Permissions Required
- Not Applicable
- PatchVendor Advisory
- Patch
- Patch
- Third Party AdvisoryVDB Entry
- Permissions Required
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:websphere_application_server:7.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_application_server:7.0.0.1:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.01151
Низкий
10 Critical
CVSS2
Дефекты
CWE-310
Связанные уязвимости
github
почти 4 года назад
The Web Services Security component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.35 and 7.0 before 7.0.0.3 has an unspecified "security problem" in the XML digital-signature specification, which has unknown impact and attack vectors.
EPSS
Процентиль: 78%
0.01151
Низкий
10 Critical
CVSS2
Дефекты
CWE-310